1,567 questions with Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud tags
An Azure Server is Being Abused
How can I report an Azure instance that is being used to send spam mail? I am willing to send full .eml files of the spam emails with their full headers. The IP address is: 20.49.19.146 The emails are being sent from: ******@wlmrt.com
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
vulnerability assessment solution... downtime?
Deploy an extension to your virtual machines to enable a vulnerability assessment solution If I enable this solution to our VMs Will there be a downtime on my VMs? Or do I have to consider anything for my VMs?
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Protect Gen V1 VM running ubuntu 18.04. threats from Drovorub.
have a Gen V1 VM running ubuntu 18.04. There is a request to enable UEFI boot to remediate threats from Drovorub. Is there a process of best practices to protect Azure VM on Linux from Drovorub?
Azure Virtual Machines
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Security Rules getting deleted automatically
While creating and adding new security rules , security rules are getting deleted automatically after sometime. Can you help me out with this?
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Vulnerability Scan Timeout
I have a recommendation in the Azure Security Advisor "VA2065 - Server-level firewall rules should be tracked and maintained at a strict minimum" on a number of sql server instances. My understanding of how to remediate these is: Adjust…
Azure SQL Database
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud

Microsoft Defender ATP for Linux - Attack Surface Reduction
Are there plans to incorporate ASR rules for the MS Defender ATP for Linux agent in the near future? This feature appears to be the only host intrusion component within the Defender ATP agent and as of now, it is only available for Windows VMs. …
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud

Attacked from AZURE?
Hi, probably this is the wrong section, I apologize for that. I recently received a message from my NAS located in my house (ITALY) saying that the IP address 40.87.2.69 tried to connect 10 times to SSH service, today 12/08/20 at 10:23(CEST) and it was…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud

Can Azure CDN protect against known vulnerabilities?
We have a website https://ourwebsite.web.core.windows.net/ which needs to be made public(available on Internet for anyone) and did a Qualys scan using an external scanner on it which found 40 vulnerabilities. The website has static HTML, CSS is inside…
Azure Content Delivery Network
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud

what is gurantee in Azure SLA : uptime or feature availability ?
what is guarantee in Azure SLA : uptime or feature availability ?
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud

How to Create DLP Policies
Within Azure, where do I create Data Loss Prevention Polices? When I select the Security Center and the Policy and Compliance center it show "No active subscriptions." Am I looking in the correct section? The setup is vastly different from O365…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud

Defender ATP for Linux Intelligence Updates
Do MS Defender for Linux agents require external access for intelligence updates? Or can a share repository be set up similar to the instruction below for Windows that would allow us to have a centralized VM for pulling down and distributing updates to…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Unable to receive Alert emails for more than 2 recipient using Azure security center
Last Friday, we were able to received the alerts for 2 recipient, and if we increase the recipient list then the alert generated on the portal but unable to received an E-mail. Is this is the limitation of the security center. Today, we are not getting…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Can you get all settings programmatically?
Hello, I want to be able to quickly do a security audit of an Azure Active Directory and O365 environment. So I wonder if you can get all settings in Azure Active Directory, Office365, Exchange Online and Teams programmatically? Just a long list of the…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Cannot bulk load because the file 'container' + file' could not be opened. Operating system error code (null).
I am not sure what is going on with this quation body it keeps nagging that there need to be at least 10 characters inside this body..... Loading a file from the Azure Blob storage should be relatively easy when you are working with a Azure SQL…
Azure SQL Database
Azure Firewall
Azure Migrate
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud

Convert RecordType from ID number to associated value
I am querying audit logs from the security and compliance center, and want to use the field RecordType in my console app, but the number value is not help. Is there a way I can convert the ID value to an associated word value that has meaning?
Azure API Management
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Entra | Microsoft Entra ID

Compliance assessment and setting policies
Setting Security Center to Standard Plan allows for view and alteration of ASC policies. For assessment the framework can be chosen (e.g. ISO) However: looking at the assessment e.g. ISO I notice Windows level CCE policies Where do…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Defender ATP for Linux
My organization is currently testing Defender ATP for Linux in our Azure Dev Lab and I have a question about virus defintion(.dat) updates for the agents. The documentation that I've been able to find does not discuss the update files and I was wondering…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Enable AUdit Logging in the Security and Compliance Center
I am trying to figure out how to enable audit logging in the security and compliance center. I have only seen resources online talking about turning on the audit log search capabilities but not how to turn the audit logs in general for a company just…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Entra | Microsoft Entra ID
Turning off Azure Security Centre to cut monthly operations cost
How much does it cost for the Azure Security Centre access per month? My security team has already deployed IBM Q-Radar SIEM and wanted to cut the cost of operating Azure cloud, hence I wonder: How much does it cost monthly to run Azure Security…
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
Microsoft Security | Microsoft Entra | Microsoft Entra ID
Microsoft Security | Microsoft Sentinel

Azure security centre
Hi, I need to enable the following policies in azure security centre. MFA vulnerability assessment Web application should be accessable over https These are all cost free or need to buy any licence? Kindly advise Thank you
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud
